Unauth Time-Based SQL Injection in API allows to exploit HTTP request Authorization header. This issue affects Pandora FMS: from 700 through <777.
References
| Link | Resource |
|---|---|
| https://pandorafms.com/en/security/common-vulnerabilities-and-exposures/ | Vendor Advisory |
| https://pandorafms.com/en/security/common-vulnerabilities-and-exposures/ | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2024-06-10 15:15
Updated : 2025-09-16 15:52
NVD link : CVE-2024-35305
Mitre link : CVE-2024-35305
CVE.ORG link : CVE-2024-35305
JSON object : View
Products Affected
artica
- pandora_fms
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
